carbonetes / diggity-actionLinks
A Github Action that utilizes Diggity to generate software bill-of-materials (SBOM).
☆14Updated 2 years ago
Alternatives and similar repositories for diggity-action
Users that are interested in diggity-action are comparing it to the libraries listed below
Sorting:
- ☆18Updated 6 months ago
- BrainIAC uses static code analysis to analyze IAC code to detect security issues before deployment. This tool can scan for issues like se…☆71Updated last year
- Generates SBOMs for container images, filesystems, archives, and more to Discover packages and libraries Highly scalable data pipelines f…☆109Updated 6 months ago
- sbomqs: The Comprehensive SBOM Quality & Compliance Tool☆261Updated this week
- A standard API specification for exchanging supply chain artifacts and intelligence☆95Updated 3 weeks ago
- Compliance-to-Policy (C2P) provides the framework to bridge the gap between compliance and policy administration in Go.☆23Updated last month
- Kubesonde: network policy testing and verification in K8s☆15Updated last month
- Supply Chain Query Tool☆13Updated 3 years ago
- Automating Compliance Tooling Project☆22Updated 3 years ago
- ORBIT: Open Resources for Baselines, Interoperability, and Tooling☆21Updated last week
- Reference GitHub Workflows for SBOM generation from the CISA SBOM Generation Reference Implementation Tiger Team☆33Updated 2 weeks ago
- A MCP server that provides web content fetching capabilities.☆20Updated 2 weeks ago
- ☆16Updated this week
- Markdown Version of the DHS/CISA Secure Software Development Self Attestation Form.☆22Updated 2 years ago
- Helm Chart for deploying GUAC☆18Updated 7 months ago
- Measure release insights and recommendations for open-source dependencies. Note: this project is archived.☆10Updated 3 years ago
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆103Updated this week
- in-toto Enhancements☆18Updated 10 months ago
- ☆19Updated 3 weeks ago
- A CLI tool for creating secure by design/default source repos.☆28Updated last year
- Report on quality of SBOM contents☆24Updated last year
- ☆42Updated last week
- Use ORT in your GitLab pipelines☆15Updated 2 months ago
- GitHub action to generate a CycloneDX SBOM for .NET☆12Updated 5 months ago
- Umbrella Repository Service for TUF☆57Updated this week
- Vuln Disclosure WG's new SIG☆11Updated 2 years ago
- sbomasm: The Complete SBOM Management Toolkit☆98Updated this week
- This repository contains a SonarQube Plugin that detects cryptographic assets in source code and generates CBOM.☆53Updated last month
- ☆58Updated this week
- Library to ingest and generate VEX documents☆17Updated 3 months ago